[Openswan Users]

Paul Wouters paul at xelerance.com
Wed May 10 16:01:33 CEST 2006


On Wed, 10 May 2006, Brian Candler wrote:

> (*) Note that if you use aggressive mode, you can use a different pre-shared
> key for each endpoint. That is, the IKE exchange also includes an identity
> (which could be an FQDN or E-mail address), and you can use this to select
> the appropriate secret. Many VPN solutions are built on this.

And can be ikecrack'ed

Paul
-- 
Building and integrating Virtual Private Networks with Openswan:
http://www.amazon.com/gp/product/1904811256/104-3099591-2946327?n=283155


More information about the Users mailing list